Splunk Search

Splunk Search
Community Activity
SrinivasaC
Working on some client data, sample data format looks like: Item status -------------------------- AAA success B...
by SrinivasaC Path Finder in Splunk Search 01-07-2016
0 3
0
3
adicoza786
Hi, I have the following sample field in my log. filter=somename89898+20+O I want to ideally extract 3 fields wit...
by adicoza786 Explorer in Splunk Search 01-06-2016
0 4
0
4
hqw
Hi , I used match command in eval wildcards like below: shop_tags have many tags, A and B just two of them to identi...
by hqw Path Finder in Splunk Search 01-06-2016
0 4
0
4
mcomfurf
I'm indexing a field with DBConnect that contains the backslash character, eg \, in order to escape quotation marks a...
by mcomfurf Path Finder in Splunk Search 01-06-2016
0 4
0
4
t9445
Apologies if this is blatantly obvious. I have been troubleshooting search performance, and like many others, have g...
by t9445 Path Finder in Splunk Search 01-06-2016
1 7
1
7
sat94541
We have 5 Node SHC member on splunk version 6.3. The Captain election is not suceeding. We followed steps and cleare...
by sat94541 Communicator in Splunk Search 01-06-2016
0 3
0
3
parameshjava
Currently I am using the search below to generate an error codes report in my application. source="log_file_name.log...
by parameshjava Explorer in Splunk Search 01-06-2016
0 1
0
1
evgenyv
Is it possible to specify a pattern or regular expression for allowed and default indexes in the role definition? [r...
by evgenyv Explorer in Splunk Search 01-06-2016
0 1
0
1
jganger
I found another question on this same subject, but haven't found an answer. For instance, I'm trying to search for a...
by jganger Explorer in Splunk Search 01-06-2016
0 9
0
9
ErikaE
My search looks like this: index=index_name source="Source A.csv" | eval Start2=strptime(Start, "%m/%d/%Y%H:%M") | ...
by ErikaE Communicator in Splunk Search 01-06-2016
0 6
0
6
vincenty
Hi I'm new to splunk. I want to search "exception" over a lot of different types of log files with a return of a tabu...
by vincenty Explorer in Splunk Search 01-06-2016
0 5
0
5
clyde772
I had some pre-processing requirement using splunk real-time search, so once I put together those results, I would li...
by clyde772 Communicator in Splunk Search 01-06-2016
0 5
0
5
dankinder
The default duration output from go (golang) is to use a single float with one or two characters identifying the unit...
by dankinder New Member in Splunk Search 01-05-2016
0 1
0
1
David
Experience Seen: in an ES environment (though not tied to ES), a | tstats search for an accelerated data model return...
by David Splunk Employee Splunk Employee in Splunk Search 01-05-2016
1 1
1
1
jameskerivan
Hi I have a field which I would like to extract a field from the XML being displayed. The only problem is the fiel...
by jameskerivan Explorer in Splunk Search 01-05-2016
0 7
0
7
prakash007
Can anyone please explain this search? It's for average request execution: index=main sourcetype=access_combined OR ...
by prakash007 Builder in Splunk Search 01-05-2016
0 5
0
5
muralianup
I have a CSV with a fields Recipient, Sender, File name..etc which is currently set to be monitored from a remote mac...
by muralianup Communicator in Splunk Search 01-05-2016
0 1
0
1
kasu_praveen
I am using TableElement/TableView component in my HTML dashboard to render a table. My search results are showing up...
by kasu_praveen Communicator in Splunk Search 01-05-2016
0 2
0
2
sfrazer
Hello, I'm running into a problem where if I nest subsearches too far, I start to return no results. I'm unable to ...
by sfrazer Explorer in Splunk Search 01-05-2016
0 2
0
2
pranjali2790
I have used javascript to display pie charts on dashboard. It works fine with other browsers on windows as well as ub...
by pranjali2790 New Member in Splunk Search 01-05-2016
0 7
0
7
cespinoz
Hi all, hope you can help me with this question. What I'm trying to do is, given the information Splunk keeps about ...
by cespinoz New Member in Splunk Search 01-05-2016
0 3
0
3
joegrossman
Right now I have a search that contains c(eval(status<=400)) AS SUCCESS c(eval(status>400)) AS FAILURE. This works, p...
by joegrossman Explorer in Splunk Search 01-05-2016
5 12
5
12
maurelio79
Hi to all, I'd like to know the difference between two kind of results that I get with 2 different searches: 1) i...
by maurelio79 Communicator in Splunk Search 01-05-2016
0 3
0
3
Bytes
Hello Ninjas, Am having some trouble trying to figure out how to use regex to perform a simple action. So I have a ...
by Bytes Explorer in Splunk Search 01-05-2016
0 18
0
18
sickyb
Hi I'm trying to create a dashboard where I count stacktraces in the logging. (the long term goal is to get rid off...
by sickyb Engager in Splunk Search 01-05-2016
0 10
0
10
Get Updates on the Splunk Community!

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Splunk Developer Day announcements: AI agents, MCP tools, Forecasting, and Custom ...

Splunk Developer Day was packed with product and platform updates for developers building in the AI ...